Microsoft Edge Security Feature Bypass (Chromium-based)
CVE-2021-31982 Published on July 1, 2023

Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability

Vendor Advisory NVD

Weakness Type

Protection Mechanism Failure

The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product. This weakness covers three distinct situations. A "missing" protection mechanism occurs when the application does not define any mechanism against a certain class of attack. An "insufficient" protection mechanism might provide some defenses - for example, against the most common attacks - but it does not protect against everything that is intended. Finally, an "ignored" mechanism occurs when a mechanism is available and in active use within the product, but the developer has not applied it in some code path.


Products Associated with CVE-2021-31982

stack.watch emails you whenever new vulnerabilities are published in Microsoft Edge Chromium or Microsoft Edge Browser. Just hit a watch button to start following.

 
 

Affected Versions

Microsoft Edge (Chromium-based):

Exploit Probability

EPSS
3.76%
Percentile
88.06%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.